Bernardo, Where are you performing the scan from? You need to do it externally if you want to see how it's operating. Also, if you're not port forwarding the you can just do default DROP but allow related back in, which would drop you down to about 6 rules on this list. Also, it's more readable if you do a iptables-save and send that output (IMHO). Gary > Can anyone shed some light on this? > > Thanx. > > > > > --- > avast! Antivirus: Outbound message clean. > Virus Database (VPS): 0450-1, 09/12/2004 > Tested on: 9/12/2004 13:47:30 > avast! - copyright (c) 2000-2004 ALWIL Software. > http://www.avast.com > > >